• DocumentCode
    2588467
  • Title

    An RBAC framework for time constrained secure interoperation in multi-domain environments

  • Author

    Piromruen, Smithi ; Joshi, James B.D.

  • Author_Institution
    Dept. of Inf. Sci. & Telecommun., Pittsburgh Univ., PA, USA
  • fYear
    2005
  • fDate
    2-4 Feb. 2005
  • Firstpage
    36
  • Lastpage
    45
  • Abstract
    In emerging e-commerce applications, time constrained information sharing between different systems is becoming a common phenomenon. A flexible and efficient mechanism is needed to support short term time-based sharing policies between transient partners. In particular, the interacting domains need to establish a time-based inter-domain access policy without violating the original time-based security policies of the individual systems. In this paper, we address this issue using the generalized temporal role based access control (GTRBAC) framework. The proposed mechanism involves a system processing an inter-domain access requirement specification to extend or restructure its local GTRBAC policy with proper temporal constraints to allow its external partner domain to access its resources. The transformed local GTRBAC policy facilitates the inter-domain accesses while still conforming to the original local policy requirements.
  • Keywords
    authorisation; open systems; GTRBAC framework; GTRBAC policy; RBAC framework; authorisation; inter-domain access requirement specification; multi-domain environments; open systems; short term time-based sharing policies; temporal constraints; temporal role based access control; time constrained information sharing; time constrained interoperation; time-based inter-domain access policy; Access control; Character generation; Conferences; Environmental management; Information security; Real time systems; Time factors;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Object-Oriented Real-Time Dependable Systems, 2005. WORDS 2005. 10th IEEE International Workshop on
  • ISSN
    1530-1443
  • Print_ISBN
    0-7695-2347-1
  • Type

    conf

  • DOI
    10.1109/WORDS.2005.18
  • Filename
    1544776